SOC Analyst L2 at a financial markets company specializing in cybersecurity and threat hunting. Responsible for monitoring security alerts and defining detection rules for SIEM and EDR solutions.
Responsibilities
Monitor security alerts and events from SIEM, EDR, IDS/IPS, firewalls, and other security tools.
Conduct threat hunting activities to identify potential risks proactively.
Develop, tune, and maintain detection rules in SIEM and EDR platforms.
Investigate and triage security incidents, escalating complex cases when needed.
Perform root cause analysis and provide actionable recommendations.
Collaborate with IT and cybersecurity teams to implement mitigation strategies.
Document incidents, findings, and improvements to SOC processes and playbooks.
Requirements
Solid experience in cybersecurity, with a focus on threat hunting.
Proven experience defining rules for SIEM and EDR solutions.
Familiarity with incident response, threat intelligence, and security best practices.
Strong analytical and problem-solving skills.
Good communication skills in English.
Ability to work in a fast-paced, 24/7 operational environment (including shift work, if required);
Security Operations Engineer at Gridware enhancing security, detection, and response in cloud - first environments. Collaborating with IT and engineering teams to implement best practices.
Cybersecurity Operations Director leading cybersecurity managed services operations at a global accounting firm. Overseeing teams, driving growth, and serving as an advisor to clients.
Security Operations Analyst responsible for developing security processes and incident response. Collaborating with multiple teams for security best practices in a hybrid work environment.
Security Manager leading IAM and SecOps at fintech solutions provider in Brazil. Developing and implementing information security programs aligned with best practices and compliance requirements.
Security Engineer enhancing cybersecurity tools and solutions for The Walt Disney Company. Performing system analyses and developing security configurations for improved protection against cyber threats.
Security Operations Lead responsible for security operations aligning with policies and compliance. Handling incident response, vulnerability management, and supporting IT teams with security expertise.
Cyber Security Specialist protecting digital estate from threats at the University of Edinburgh. Focused on identifying and mitigating cyber risks while supporting teaching and research services.
Lead Specialist in Security Operations, enhancing detection engineering and incident response at Pearson. Collaborate with teams and drive process improvements in a high - paced environment.